Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2004-02-17 CVE-2003-0966 Remote Buffer Overflow vulnerability in ELM frm Command
Buffer overflow in the frm command in elm 2.5.6 and earlier, and possibly later versions, allows remote attackers to execute arbitrary code via a long Subject line.
network
low complexity
elm-development-group
7.5
2004-02-17 CVE-2003-0700 Remote Security vulnerability in Kernel 2.4.208/2.4.21
The C-Media PCI sound driver in Linux before 2.4.22 does not use the get_user function to access userspace in certain conditions, which crosses security boundaries and may facilitate the exploitation of vulnerabilities, a different vulnerability than CVE-2003-0699.
network
low complexity
redhat
7.5
2004-02-11 CVE-2003-1214 Security Bypass vulnerability in ezContents
Unknown vulnerability in the server login for VisualShapers ezContents 2.02 and earlier allows remote attackers to bypass access restrictions and gain access to restricted functions.
network
low complexity
visualshapers
7.5
2004-02-09 CVE-2004-2079 Remote vulnerability in Red-M Red-Alert 2.7.5V3.1Build24
Red-M Red-Alert 2.7.5 with software 3.1 build 24 binds authentication to IP addresses, which allows remote attackers to bypass authentication by connecting from the same IP address as an active authenticated user.
network
low complexity
red-m
7.5
2004-02-08 CVE-2004-2087 User Authentication vulnerability in Sandsurfer 1.6.5
Unknown vulnerability in SandSurfer before 1.7.0 allows remote attackers to gain access as a logged-in user.
network
low complexity
sandsurfer
7.5
2004-02-08 CVE-2004-1244 Unspecified vulnerability in Microsoft Windows Media Player 9
Windows Media Player 9 allows remote attackers to execute arbitrary code via a PNG file containing large (1) width or (2) height values, aka the "PNG Processing Vulnerability."
network
low complexity
microsoft
7.5
2004-02-06 CVE-2004-2073 Linux-VServer 1.24 allows local users with root privileges on a virtual server to gain access to the filesystem outside the virtual server via a modified chroot-again exploit using the chmod command.
local
low complexity
vserver
7.2
2004-02-03 CVE-2004-1082 mod_digest_apple for Apache 1.3.31 and 1.3.32 on Mac OS X Server does not properly verify the nonce of a client response, which allows remote attackers to replay credentials.
network
low complexity
apache apple avaya hp ibm openbsd sco sun
7.5
2004-02-03 CVE-2004-0045 Buffer Overrun vulnerability in ISC INN 2.4.0
Buffer overflow in the ARTpost function in art.c in the control message handling code for INN 2.4.0 may allow remote attackers to execute arbitrary code.
network
low complexity
isc
7.5
2004-02-03 CVE-2004-0044 Unspecified vulnerability in Cisco Personal Assistant 1.4(1)/1.4(2)
Cisco Personal Assistant 1.4(1) and 1.4(2) disables password authentication when "Allow Only Cisco CallManager Users" is enabled and the Corporate Directory settings refer to the directory service being used by Cisco CallManager, which allows remote attackers to gain access with a valid username.
network
low complexity
cisco
7.5